Two-factor authentication (2FA) and multi-factor authentication (MFA) both add additional layers of security to your account. Your "P@ssw0rd1234" password isn't as clever as you think it is. If an attacker figures our your password and you don't have 2FA enabled, your account is now their account. 2FA combines something you know (your password) with something you have (ideally a second device). Of course, you've already configured KeePass so you don't even remember your account password, right? Right?
Of course, there are several types available, and I'm going to go through them from the least secure to the most secure.
I personally set up both FIDO2 and TOTP whenever I can. That way if the FIDO2 keys somehow get corrupted, I have the TOTP method to fall back on. It might seem like a pain in the ass, but it's an even bigger pain in the ass to try to recover your account from a hacker so a few seconds of inconvenience is worth the peace of mind.